From a5ad479170a34ba5492d428bb9fedfd698354120 Mon Sep 17 00:00:00 2001 From: oxmc Date: Tue, 19 Aug 2025 18:33:31 -0700 Subject: [PATCH] Update sepolicy/pawlet_device.te --- sepolicy/pawlet_device.te | 15 ++++++--------- 1 file changed, 6 insertions(+), 9 deletions(-) diff --git a/sepolicy/pawlet_device.te b/sepolicy/pawlet_device.te index facfe0b..99bfa68 100644 --- a/sepolicy/pawlet_device.te +++ b/sepolicy/pawlet_device.te @@ -1,17 +1,14 @@ +# Domain declaration +type pawlet_device, domain, coredomain; +type pawlet_device_exec, exec_type, file_type; + # Inherit from core domain typeattribute pawlet_device coredomain; # Basic file access for your domain allow pawlet_device pawlet_device_exec:file { execute read open map }; -allow pawlet_device system_file:file { read getattr open }; -# Binder communication if needed +# Binder communication binder_use(pawlet_device) binder_call(pawlet_device, system_server) -binder_call(pawlet_device, servicemanager) - -# Define a new property type for your device -type pawlet_prop, property_type; - -# Allow your device to get and set its own properties -allow pawlet_device pawlet_prop:property_service { get set }; \ No newline at end of file +binder_call(pawlet_device, servicemanager) \ No newline at end of file